SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2011-4161

The default configuration of the HP CM8060 Color MFP with Edgeline; Color LaserJet 3xxx, 4xxx, 5550, 9500, CMxxxx, CPxxxx, and Enterprise CPxxxx; Digital Sender 9200c and 9250c; LaserJet 4xxx, 5200, 90xx, Mxxxx, and Pxxxx; and LaserJet Enterprise 500…

HIGH 10.0EPSS 13.9%

Does this matter?

EPSS puts the probability of exploitation in the next 30 days at 13.9%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.

Description

The default configuration of the HP CM8060 Color MFP with Edgeline; Color LaserJet 3xxx, 4xxx, 5550, 9500, CMxxxx, CPxxxx, and Enterprise CPxxxx; Digital Sender 9200c and 9250c; LaserJet 4xxx, 5200, 90xx, Mxxxx, and Pxxxx; and LaserJet Enterprise 500 color M551, 600, M4555 MFP, and P3015 enables the Remote Firmware Update (RFU) setting, which allows remote attackers to execute arbitrary code by using a session on TCP port 9100 to upload a crafted firmware update.

CVSS 2.0
10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS
13.89% probability · 96th percentile
CISA KEV
Not listed
Weakness
CWE-264
Affected
hp/color laserjet 3000 · hp/color laserjet 3800 · hp/color laserjet 4700 · hp/color laserjet 4730 · hp/color laserjet 4730 mfp · hp/color laserjet 5550 · hp/color laserjet 9500 · hp/color laserjet cm3530 · hp/color laserjet cm4540 · hp/color laserjet cm4730 · hp/color laserjet cm6030 · hp/color laserjet cm6040 · hp/color laserjet cp3505 · hp/color laserjet cp3525 · hp/color laserjet cp4005 · hp/color laserjet cp5525 · hp/color laserjet cp6015 · hp/color laserjet enterprise cp4520 · hp/color laserjet enterprise cp4525 · hp/color mfp cm8060 · +21 more
Source
hp-security-alert@hp.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.